
Plugin coverage continues to keep pace with actively exploited CVEs, which matters when we're triaging Patch Tuesday against KEV. Scan templates and credentialed checks have been stable, and the output integrates cleanly into our monthly patch briefings without heavy reformatting. Review collected by and hosted on G2.com.
Scan result storage remains a persistent problem at our scan volume. On-prem disk consumption grows quickly, and pushing everything to the cloud isn't a fit for every environment — better native retention controls and result pruning would help. Remediation tracking also needs attention: a finding only closes when a later scan actively re-checks the same plugin and it doesn't fire. If OS fingerprinting is inconclusive on an unauthenticated scan, findings can sit open indefinitely, forcing manual Accept Risk workflows with change record documentation to keep the dashboard accurate. Smarter stale-finding handling would reduce that overhead. Review collected by and hosted on G2.com.